Elbie 랜섬웨어 국내 유포 중 - ASEC BLOG
Tags
attack-pattern: | Software - T1592.002 |
Common Information
Type | Value |
---|---|
UUID | 356c1cbf-1ff0-4bd8-b1e3-08c1cf83efcb |
Fingerprint | e488be1a39bf53b3 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Oct. 26, 2022, 3:58 p.m. |
Added to db | Jan. 16, 2023, 3:52 p.m. |
Last updated | Nov. 18, 2024, 1:38 a.m. |
Headline | Elbie 랜섬웨어 국내 유포 중 |
Title | Elbie 랜섬웨어 국내 유포 중 - ASEC BLOG |
Detected Hints/Tags/Attributes | 10/1/7 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://asec.ahnlab.com/ko/40743/ |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | File | 16 | ieinstal.exe |
|
Details | File | 2127 | cmd.exe |
|
Details | File | 2 | c:\users\kk\appdata\local\ieinstal.exe |
|
Details | File | 65 | info.txt |
|
Details | md5 | 2 | 4f1025c0661cc0fa578a52466fa65b71 |
|
Details | md5 | 3 | 62885d0f106569fac3985f72f0ca10cb |
|
Details | Windows Registry Key | 188 | HKCU\Software\Microsoft\Windows\CurrentVersion\Run |